CVE-2002-0953

globals.php in PHP Address before 0.2f, with the PHP allow_url_fopen and register_globals variables enabled, allows remote attackers to execute arbitrary PHP code via a URL to the code in the LangCookie parameter.

Scoring

CVSS base score
0.27
EPSS probability
5.44%
Published
2003-04-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs